1

Security Risk Compliance Jobs in Raleigh, NC (NOW HIRING)

Track what's working with real metrics and communicate risk clearly to technical and non-technical ... Experience working in or alongside a regulated industry with real compliance requirements * The ...

C2C/W2 3The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for ...

Unarmed Security Guard

Raleigh, NC

$15.50 - $18.25/hr

... situational risk within assigned areas and prompt in communicating events to Site Supervisor ... compliant with federal/state regulations and respectful of our company policies and protocols ...

Data Security, Risk Management & Operational Controls * Oversee secure data destruction compliance standards and chain-of-custody procedures. * Partner with IT and Operations teams to ensure proper ...

Data Security, Risk Management & Operational Controls * Oversee secure data destruction compliance standards and chain-of-custody procedures. * Partner with IT and Operations teams to ensure proper ...

next page

Showing results 1-20

Security Risk Compliance information

See Raleigh, NC salary details

$31.6K

$78.9K

$120.1K

How much do security risk compliance jobs pay per year?

As of Jun 9, 2026, the average yearly pay for security risk compliance in Raleigh, NC is $78,878.00, according to ZipRecruiter salary data. Most workers in this role earn between $58,800.00 and $97,200.00 per year, depending on experience, location, and employer.

What is the difference between Security Risk Compliance vs Security Analyst?

AspectSecurity Risk ComplianceSecurity Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISACISSP, CompTIA Security+, GIAC Security Certifications
Work EnvironmentPolicy development, compliance audits, risk assessmentsMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government sectors focusing on regulatory adherenceIT departments across various industries focusing on security operations

Security Risk Compliance professionals focus on ensuring organizations meet regulatory standards and manage security risks through policies and audits. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within similar environments, their core responsibilities differ: compliance versus active security monitoring.

What are some common challenges faced by Security Risk Compliance professionals when balancing regulatory requirements with business objectives?

Security Risk Compliance professionals often need to navigate the delicate balance between adhering to complex regulatory standards and supporting the organization's operational goals. A major challenge is ensuring compliance without hindering business innovation or efficiency. This involves working closely with various departments to interpret regulations, communicate risks, and implement pragmatic controls that satisfy both legal requirements and business needs. Effective collaboration and ongoing education are key to overcoming these challenges and maintaining a strong security posture.

What are the key skills and qualifications needed to thrive as a Security Risk Compliance professional, and why are they important?

To thrive as a Security Risk Compliance professional, you need a solid understanding of information security frameworks, risk assessment methodologies, and relevant regulations, often supported by a degree in cybersecurity or a related field. Familiarity with tools such as GRC (Governance, Risk, and Compliance) platforms, vulnerability scanners, and certifications like CISSP, CISA, or CRISC is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and collaborate with stakeholders. These skills are vital to ensure organizations meet compliance requirements, mitigate risks, and maintain trust with clients and regulators.

What is Security Risk Compliance?

Security Risk Compliance refers to the process of identifying, assessing, and managing risks to an organization's information systems while ensuring adherence to relevant laws, regulations, and industry standards. Professionals in this field develop policies, conduct risk assessments, and implement controls to protect sensitive data from threats. Their work helps organizations minimize security vulnerabilities and avoid legal or financial consequences related to non-compliance.
What are popular job titles related to Security Risk Compliance jobs in Raleigh, NC? For Security Risk Compliance jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Security Risk Compliance jobs in Raleigh, NC look for? The top searched job categories for Security Risk Compliance jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Security Risk Compliance jobs? Cities near Raleigh, NC with the most Security Risk Compliance job openings:
Consulting/Principal Security Engineer

Consulting/Principal Security Engineer

RELX

Raleigh, NC • On-site

$104K - $174K/yr

Full-time

Posted 2 days ago


Job description

What You'll Actually Be Doing

Setting Direction, Not Just Following It

  • Provide strategic and tactical technical guidance that shapes how we approach security across the organization - with real input into leadership decisions

  • Research emerging threats, new attack techniques, and novel mitigation approaches, then translate that research into actionable guidance before those threats hit our doorstep

  • Own escalations that require deep expertise - you're the person the team calls when things get interesting

Secure SDLC & AppSec Program

  • Design and evolve our secure software development lifecycle - threat modeling, security design reviews, developer enablement, and the toolchain that ties it all together

  • Integrate modern security tooling (SAST, DAST, SCA, secrets detection) into CI/CD pipelines in ways engineers actually embrace rather than route around

  • Build and run security champions programs that make developers your allies, not your adversaries

  • Track what's working with real metrics and communicate risk clearly to technical and non-technical audiences alike

AI / LLM Security

  • Lead security reviews and threat modeling for AI-powered features - LLMs, RAG pipelines, vector databases, agentic workflows, the works

  • Get hands-on with the OWASP, NIST, and the latest research on prompt injection, model supply chain risks, inference-based data leakage, and insecure tool use

  • Evaluate AI tools and APIs being introduced into the SDLC - not just for security risk, but for how they change the attack surface entirely

  • Define internal standards for building AI-integrated applications responsibly, so our teams can move fast without leaving the door wide open

  • Use AI-powered security tooling yourself - we expect you to be fluent in the tools reshaping how AppSec work gets done, not skeptical of them

Creative Problem Solving at Scale

  • Design innovative solutions that protect the confidentiality, integrity, and availability of our systems and data - efficiently, not bureaucratically

  • Stay curious about new technologies: evaluate them, understand the security implications, and give leadership the insight they need to make smart bets

  • Collaborate across engineering, GRC, legal, and privacy to ensure our controls hold up in a regulated environment (HIPAA, FedRAMP) without slowing everything to a crawl

At the Principal Level, additionally:

  • Shape multi-year technical strategy for the AppSec program and influence engineering organization-wide

  • Serve as a go-to authority on AI/LLM security for senior engineering and product leadership

  • Mentor the next generation of security engineers and raise the bar across the team

What We're Looking For

Must-Haves

  • 7+ years in application security, security-focused software engineering, or a closely related discipline

  • Real experience with threat modeling (STRIDE, PASTA, or your preferred framework) applied to complex, distributed systems

  • Strong command of web application and API security vulnerabilities and how to actually fix them - not just how to find them

  • Hands-on experience embedding SAST, DAST, SCA, and secrets scanning into developer workflows

  • Enough coding ability (Python, Java, Go, TypeScript, etc.) to meaningfully review code for security issues and build lightweight automation

  • Experience working in or alongside a regulated industry with real compliance requirements

  • The ability to write a clear, compelling security finding - and explain it to a VP without losing them

  • Strong collaboration ethos. The security team is an enabler of the business, not a hindrance.

Strong Differentiators

  • Practical experience securing AI/ML systems or LLM-integrated applications - this is increasingly central to the role

  • Familiarity with agentic AI security risks: tool misuse, prompt injection chains, privilege escalation via agents

  • Experience building developer security education or security champions programs that actually stick

  • Cloud security depth (AWS, Azure, or GCP) - IAM, workload security, IaC hardening

  • Container and Kubernetes security experience

Great to Have

  • Offensive security background that informs how you think defensively

  • Relevant certifications: OSCP, CSSLP, GWEB, GPEN, cloud security specialty, or equivalent

  • Prior experience in legal research or AI workflow

U.S. National Base Pay Range: $104,900 - $174,700. Geographic differentials may apply in some locations to better reflect local market rates. This job is eligible for an annual incentive bonus.

We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.

We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Formor please contact 1-855-833-5120.

Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.

Please read our Candidate Privacy Policy.

We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.

USA Job Seekers:

EEO Know Your Rights.